CWE-281

Improper Preservation of Permissions

Parent: CWE-732 - Incorrect Permission Assignment for Critical Resource

The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.

321 vulnerabilities with CWE-281
CVE-2024-41644 CRITICAL
Open Robotics Robotic Operating System 2 <v.humble - RCE
CVSS 9.8
CVE-2024-37575 HIGH
Mister 1.4.264 - RCE
CVSS 7.5
CVE-2024-43784 MEDIUM
lakeFS <1.33.0 - Privilege Escalation
CVSS 5.7
CVE-2024-52522 MEDIUM
Rclone < 1.68.2 - Symlink Following
CVE-2024-36062 MEDIUM
com.callassistant.android <1.174 - RCE
CVSS 4.0
CVE-2024-10458 HIGH
Firefox < 132 & Thunderbird < 132 - SSRF
CVSS 7.5
CVE-2024-44193 HIGH
iTunes <12.13.3 - Privilege Escalation
CVSS 7.8
CVE-2024-9333 MEDIUM
M-Files Connector for Copilot <24.9.3 - Auth Bypass
CVE-2024-44188 MEDIUM
macOS Sequoia <15 - Info Disclosure
CVSS 5.5
CVE-2024-44149 HIGH
macOS Sequoia <15 - Info Disclosure
CVSS 7.5
CVE-2024-40859 MEDIUM
macOS Sequoia <15 - Info Disclosure
CVSS 5.5
CVE-2024-40831 MEDIUM
macOS Sequoia <15 - Info Disclosure
CVSS 5.5
CVE-2024-40770 HIGH
macOS Sequoia <15 - Privilege Escalation
CVSS 7.5
CVE-2024-27858 MEDIUM
macOS Sequoia <15 - Info Disclosure
CVSS 5.5
CVE-2024-27795 HIGH
macOS Sequoia <15 - Info Disclosure
CVSS 7.5
CVE-2024-22121 MEDIUM
Zabbix Agent - Privilege Escalation
CVSS 6.1
CVE-2024-22114 MEDIUM
System Information Widget - Info Disclosure
CVSS 4.3
CVE-2024-23464 HIGH
Zscaler Client Connector <4.2.1 - Privilege Escalation
CVSS 7.2
CVE-2024-33892 HIGH
Cosy+ <21.2s10, <22.1s3 - Info Disclosure
CVSS 7.5
CVE-2024-40828 HIGH
macOS - Privilege Escalation
CVSS 7.8
CVE-2024-40824 MEDIUM
watchOS <10.6 - Info Disclosure
CVSS 5.5
CVE-2024-40821 HIGH
macOS - Info Disclosure
CVSS 7.1
CVE-2024-40811 MEDIUM
macOS Sonoma <14.6 - Info Disclosure
CVSS 5.5
CVE-2024-40805 HIGH
watchOS 10.6-macOS Sonoma 14.6-iOS 17.6-iPadOS 17.6-tvOS 17.6 - Pri...
CVSS 7.1
CVE-2024-40800 MEDIUM
macOS - File System Modification
CVSS 5.5
Details
Vulnerabilities 321